Skip to content
Critical Privilege Escalation Flaws in Linux Kernel Affecting Multiple Systems

Critical Privilege Escalation Flaws in Linux Kernel Affecting Multiple Systems

First seen 29 Sep 2026, 15:40 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 29, 2026 at 16:22 UTC
  • •CVE-2025-10263 and CVE-2025-54518 allow privilege escalation on affected systems.
  • •Active exploitation of these vulnerabilities has been confirmed by CISA.
  • •Administrators must update and reboot systems running affected Linux kernel versions.

On September 29, 2026, multiple vulnerabilities were disclosed in the Linux kernel, specifically affecting Ubuntu 24.04 and other distributions. These vulnerabilities include CVE-2025-10263, which allows local attackers to bypass memory protections on Arm processors, and CVE-2025-54518, which affects AMD Zen 2 processors, enabling privilege escalation. The flaws could allow attackers to write to memory after permissions were revoked, potentially compromising systems. Users of affected systems, including those running Oracle Cloud and AWS, are urged to apply the patches immediately. The vulnerabilities have been confirmed by CISA, which reported active exploitation of the Linux firewall flaw. The updates require a system reboot and may necessitate recompiling third-party kernel modules. Administrators are advised to check for the latest package versions to mitigate these risks.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2026-04-03
Public exploit for CVE-2026-53075 released
A proof-of-concept exploit appeared on GitHub, lowering the barrier for opportunistic attackers.
GitHub
2026-05-15
CVE-2025-54518 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-15
CVE-2026-43490 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-19
CVE-2026-43492 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-21
CVE-2026-43495 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-21
CVE-2026-43498 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-21
CVE-2026-43496 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-21
CVE-2026-43502 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-21
CVE-2026-43497 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-26
CVE-2026-45834 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE

More articles in this cluster (3)

Following this threat?

Track Amazon Web Services and CVE-2025-10263 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed